Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
Jobs
Pricing
EN
中
Loading…
Maven/com.vaadin:vaadin-bom — 9 CVEs · VulnScope
pkg:Maven/
com.vaadin:vaadin-bom
9 total CVEs
HIGH
2
MEDIUM
6
LOW
1
✅ Check your installed version
Check
All known vulnerabilities
HIGH
7.5
CVE-2020-36320
Regular expression denial of service (ReDoS) in EmailValidator class in Vaadin 7
>= 7.0.0.beta1, < 7.7.22
HIGH
7.5
CVE-2021-31405
Regular expression denial of service (ReDoS) in EmailField component in Vaadin 14 and 15-17
>= 14.0.6, < 14.4.4
MEDIUM
6.3
CVE-2021-31411
Insecure temporary directory usage in frontend build functionality of Vaadin 14 and 15-19
>= 14.0.3, < 14.5.3
MEDIUM
6.3
Server session is not invalidated when logout() helper method of Authentication module is used in Vaadin 18-19
>= 18.0.0, < 19.0.4
MEDIUM
6.1
Reflected cross-site scripting in vaadin-menu-bar webjar resources in Vaadin 14
>= 14.0.0, < 14.4.5
MEDIUM
5.4
Stored cross-site scripting in Grid component in Vaadin 7 and 8
>= 7.4.0, < 7.7.20
MEDIUM
5.3
Possible route enumeration in production mode via RouteNotFoundError view in Vaadin 10, 11-14, and 15-19
>= 10.0.0, < 10.0.19
MEDIUM
4.0
Timing side channel vulnerability in UIDL request handler in Vaadin 7 and 8
>= 7.0.0, < 7.7.24
LOW
2.5
Reflected cross-site scripting in development mode handler in Vaadin 14, 15-19
>= 14.0.0, < 14.6.2
CVE-2021-31408
CVE-2021-33611
CVE-2019-25028
CVE-2021-31412
CVE-2021-31403
CVE-2021-33604